Browse Source

Update README.md

assume-breach 3 years ago
parent
commit
b3a55c991f
1 changed files with 2 additions and 0 deletions
  1. 2 0
      InsideMan/README.md

+ 2 - 0
InsideMan/README.md

@@ -1,5 +1,7 @@
 InsideMan is an internal Windows phishing executable that utilizes Powershell Get-Credential calls in an attempt to coerce the user into typing thier plaintext password into the prompt. The plaintext password is then written to a file named windows32.txt located in the user's Documents directory. 
 
+This is not a sophisticated attack. Might set off an alarm or two with advanced EDR looking for abnormal powershell calls.
+
 USAGE:
 
 Use gcc to compile the cpp file. gcc.exe insideman.cpp -o insideman.exe